MFSA-RESERVE-2025-1915280: Medium severity thunderbird vulnerability
Published Apr 29, 2025
·Updated
An attacker with control over a content process could potentially leverage the privileged UITour actor to leak sensitive information or escalate privileges.
Affected Software
2 affected componentsFixes available
Mozilla Thunderbird<138
138
Mozilla Firefox<138
138
Event History
Apr 29, 2025
CVE Published
via Mozilla·12:00 AM
Frequently Asked Questions
1
What is the severity of MFSA-RESERVE-2025-1915280?
The severity of MFSA-RESERVE-2025-1915280 is critical due to the potential for sensitive information leakage and privilege escalation.
2
How do I fix MFSA-RESERVE-2025-1915280?
To fix MFSA-RESERVE-2025-1915280, upgrade to the latest version of Firefox or Thunderbird beyond version 138.
3
Who is affected by MFSA-RESERVE-2025-1915280?
MFSA-RESERVE-2025-1915280 affects users of Mozilla Firefox and Thunderbird versions up to 138.
4
What type of attack is associated with MFSA-RESERVE-2025-1915280?
MFSA-RESERVE-2025-1915280 is associated with an attack that could exploit the UITour actor for privilege escalation.
5
Can MFSA-RESERVE-2025-1915280 lead to data breaches?
Yes, MFSA-RESERVE-2025-1915280 can lead to data breaches due to the potential leakage of sensitive information.